日韩性视频-久久久蜜桃-www中文字幕-在线中文字幕av-亚洲欧美一区二区三区四区-撸久久-香蕉视频一区-久久无码精品丰满人妻-国产高潮av-激情福利社-日韩av网址大全-国产精品久久999-日本五十路在线-性欧美在线-久久99精品波多结衣一区-男女午夜免费视频-黑人极品ⅴideos精品欧美棵-人人妻人人澡人人爽精品欧美一区-日韩一区在线看-欧美a级在线免费观看

歡迎訪問 生活随笔!

生活随笔

當(dāng)前位置: 首頁 > 编程资源 > 编程问答 >内容正文

编程问答

minio权限之IAM policy配置及用户赋权

發(fā)布時(shí)間:2023/12/16 编程问答 40 豆豆
生活随笔 收集整理的這篇文章主要介紹了 minio权限之IAM policy配置及用户赋权 小編覺得挺不錯(cuò)的,現(xiàn)在分享給大家,幫大家做個(gè)參考.

一、介紹

通常我們在使用minio的時(shí)候,需要添加用戶,并且給用戶授予相應(yīng)桶的權(quán)限。本地主要介紹單獨(dú)給桶設(shè)置policy的相關(guān)權(quán)限(讀寫,只讀,只寫),同時(shí)給用戶賦予相應(yīng)的Policy。最終達(dá)到給用戶賦予某個(gè)桶獨(dú)立的讀寫、只讀、只寫權(quán)限。

a、添加policy

1、選擇IAM Policies菜單

2、創(chuàng)建Policy

3、輸入Policy的名字

4、輸入Policy的內(nèi)容,例子中的是讀寫權(quán)限,可以從文章的第二節(jié)中去復(fù)制內(nèi)容。

本文的二,三,四節(jié)是專門介紹單獨(dú)某個(gè)桶的讀寫,只讀,只寫權(quán)限的Policy設(shè)置的。使用的時(shí)候可以拷貝。

b、添加用戶并賦予policy權(quán)限

1、選擇用戶菜單

2、創(chuàng)建用戶

3、設(shè)置access key(程序中往往會(huì)使用)

4、設(shè)置secret key(程序中往往會(huì)使用)

5、為該用戶選擇policy?

?

二、獨(dú)立桶[IAM Policies]設(shè)置之readwrite

需要修改對應(yīng)的桶名字,本文列子中的桶名字為bucket-demo

總共有3處桶名字需要修改

?

?全量的代碼如下

{"Version": "2012-10-17","Statement": [{"Effect": "Allow","Principal": {"AWS": ["*"]},"Action": ["s3:GetBucketLocation","s3:ListBucketMultipartUploads"],"Resource": ["arn:aws:s3:::bucket-demo"]},{"Effect": "Allow","Principal": {"AWS": ["*"]},"Action": ["s3:ListBucket"],"Resource": ["arn:aws:s3:::bucket-demo"],"Condition": {"StringEquals": {"s3:prefix": ["*"]}}},{"Effect": "Allow","Principal": {"AWS": ["*"]},"Action": ["s3:GetObject","s3:ListMultipartUploadParts","s3:PutObject","s3:AbortMultipartUpload","s3:DeleteObject"],"Resource": ["arn:aws:s3:::bucket-demo/**"]}] }

三、獨(dú)立桶[IAM Policies]設(shè)置之readonly

需要修改3處桶的名字,下圖中用數(shù)字標(biāo)出了。

?

readonly的全量代碼

{"Version": "2012-10-17","Statement": [{"Effect": "Allow","Principal": {"AWS": ["*"]},"Action": ["s3:GetBucketLocation"],"Resource": ["arn:aws:s3:::bucket-demo"]},{"Effect": "Allow","Principal": {"AWS": ["*"]},"Action": ["s3:ListBucket"],"Resource": ["arn:aws:s3:::bucket-demo"],"Condition": {"StringEquals": {"s3:prefix": ["*"]}}},{"Effect": "Allow","Principal": {"AWS": ["*"]},"Action": ["s3:GetObject"],"Resource": ["arn:aws:s3:::bucket-demo/**"]}] }

?四、獨(dú)立桶[IAM Policies]設(shè)置之writeonly

有2處桶名字需要修改

?writeonly全量代碼

{"Version": "2012-10-17","Statement": [{"Effect": "Allow","Principal": {"AWS": ["*"]},"Action": ["s3:GetBucketLocation","s3:ListBucketMultipartUploads"],"Resource": ["arn:aws:s3:::bucket-demo"]},{"Effect": "Allow","Principal": {"AWS": ["*"]},"Action": ["s3:AbortMultipartUpload","s3:DeleteObject","s3:ListMultipartUploadParts","s3:PutObject"],"Resource": ["arn:aws:s3:::bucket-demo/**"]}] }

總結(jié)

以上是生活随笔為你收集整理的minio权限之IAM policy配置及用户赋权的全部內(nèi)容,希望文章能夠幫你解決所遇到的問題。

如果覺得生活随笔網(wǎng)站內(nèi)容還不錯(cuò),歡迎將生活随笔推薦給好友。